The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2026-13584: Improper Enforcement of Message Integrity During Transmission in a Communication ChannelN/A7.1 High0%Jul 30, 2026
CVE-2026-64635: Weak Password Recovery Mechanism for Forgotten Password5.3 MediumN/A0%Jul 30, 2026
CVE-2026-59328: Improper Neutralization of Input During Web Page Generation4.2 MediumN/A0%Jul 30, 2026
CVE-2026-59327: Cleartext Storage of Sensitive Information4.4 MediumN/A0%Jul 30, 2026
CVE-2026-59326: Insertion of Sensitive Information into Log File3.3 LowN/A0%Jul 30, 2026
CVE-2026-58066: Improper Authentication9.8 CriticalN/A0%Jul 30, 2026
CVE-2026-58046: Improper Neutralization of Special Elements used in an SQL Command9.9 CriticalN/A1%Jul 30, 2026
CVE-2026-58043: Improper Access Control8.4 HighN/A0%Jul 30, 2026
CVE-2026-58040: Improper Validation of Certificate with Host Mismatch6.3 MediumN/A0%Jul 30, 2026
CVE-2026-56850: Improper Authentication4.4 MediumN/A0%Jul 30, 2026
CVE-2026-56847: Excessive Use of Unconditional Branching6.1 MediumN/A0%Jul 30, 2026
CVE-2026-47882: Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)8.3 HighN/A0%Jul 30, 2026
CVE-2026-47873: Binding to an Unrestricted IP Address8.0 HighN/A0%Jul 30, 2026
CVE-2026-47858: Missing Authentication for Critical Function8.0 HighN/A0%Jul 30, 2026
CVE-2026-16531: Improper Limitation of a Pathname to a Restricted Directory5.3 MediumN/A0%Jul 30, 2026
CVE-2026-16530: Out-of-bounds Read6.5 MediumN/A0%Jul 30, 2026
CVE-2026-16529: Integer Overflow or Wraparound7.5 HighN/A0%Jul 30, 2026
CVE-2026-16527: Missing Authentication for Critical Function7.3 HighN/A0%Jul 30, 2026
CVE-2026-16526: Exposure of File Descriptor to Unintended Control Sphere8.8 HighN/A0%Jul 30, 2026
CVE-2026-16524: Improper Neutralization of Special Elements used in an OS Command7.8 HighN/A1%Jul 30, 2026
CVE-2026-15382: External Control of File Name or Path6.5 MediumN/A0%Jul 30, 2026
CVE-2026-15257: Authorization Bypass Through User-Controlled Key5.3 MediumN/A0%Jul 30, 2026
CVE-2026-15255: Authorization Bypass Through User-Controlled Key5.3 MediumN/A0%Jul 30, 2026
CVE-2026-15252: Missing Authorization5.4 MediumN/A0%Jul 30, 2026
CVE-2026-15250: Improper Access Control5.3 MediumN/A0%Jul 30, 2026
25626-25650 of 450481